Kleopatra Security review

Ingo Klöcker kloecker at kde.org
Wed Jun 21 21:47:03 BST 2023


Hi,

the KDE community is a community of volunteers. We cannot provide the 
information you need.

But there is the company g10 Code GmbH [1] which offers Kleopatra as part of 
their commercial offering "GnuPG VS-Desktop" (which is certified by the German 
BSI). There may be other companies. You may want to contact them.

Disclaimer: I'm working for g10 Code GmbH as freelancer.

Regards,
Ingo

[1] https://www.gnupg.com

On Mittwoch, 21. Juni 2023 20:58:00 CEST Anjan Kopparati wrote:
> Hello,
> 
> Our IT team wants to use Kleopatra opensource project to generate PGP keys.
> Before we approve the usage of this tool, we have to perform a vendor
> security review to approve it for usage.
> 
> Do you have any security audit reports that we could use to better
> understand that security controls you've implemented for Kleopatra?
> 
> Thank you
> 
> [Logo]<https://www.flexiti.com/>
> Anjan Kopparati
> Security Engineer
> E: akopparati at flexiti.com<mailto:akopparati at flexiti.com>
> 250 University Ave, Suite 600
> Toronto ON, M5H 3E5
> www.flexiti.com<https://www.flexiti.com>
> [https://flx-public-files.s3.amazonaws.com/Flexiti+Signature/image002.png]

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 228 bytes
Desc: This is a digitally signed message part.
URL: <http://mail.kde.org/pipermail/kdepim-users/attachments/20230621/77446cbf/attachment.sig>


More information about the kdepim-users mailing list